Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple absolute path traversal vulnerabilities in eLineStudio Site Composer (ESC) 2.6 allow remote attackers to create or delete arbitrary directories via a full pathname in the inpCurrFolder parameter to (1) folderdel_.asp or (2) foldernew.asp in cms/assetmanager/.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
eLineStudio Site Composer 多个路径遍历漏洞
Vulnerability Description
eLineStudio Site Composer (ESC) 2.6存在多个路径遍历漏洞,远程攻击者通过对(1) folderdel_.asp 或 (2)cms/assetmanager/中的 foldernew.asp的参数中完整的路径名来新建或删除任意目录。
CVSS Information
N/A
Vulnerability Type
N/A